Constarium
← Search

Structure · dataset · 2026

Efficient and secure hardware architectures for lattice based cryptography

Listed in ZivaHub and Deakin Research Online and DMU Figshare — shown once because both records carry DOI 10.17034/32640432.v1

<div>The powerful computing capabilities of quantum computers and certain quantum computing-based algorithms pose significant threats to current cryptographic algorithms.

Description

Public key algorithms, such as RSA and ECC, will no longer be secure in the era of quantum computers. PQC and quantum encryption are two encryption technologies that have been developed to address the challenges posed by quantum computing.

Compared to quantum encryption, PQC. still employs traditional encryption based on mathematical problems, making it more portable and cost-effective. In 2016, the NIST initiated the PQC standardization process. Following three rounds of competition, CRYSTALS-Kyber (Kyber), a lattice based cryptography scheme, became the only PKE/ KEM scheme selected for standardisation.

Read the rest (7 more)

The first PQC KEM scheme published by NIST in February 2024, the ML-KEM, is derived from Kyber with minor modifications.In evaluating the new PQC cryptographic candidate, NIST prioritised algorithmic security and performance over the three rounds of the process. As new algorithms are selected for standardisation, their performance will become more crucial, impacting their potential use in the future. Hardware design offers higher parallelism compared to software design, thereby offering higher speeds.

In hardware design, improving algorithm execution speed, and hardware efficiency, and protecting implementations from physical attacks are key challenges.To address the hardware design challenges in implementating the complete Kyber or ML-KEM scheme, the goal of this thesis is to design high-speed and highly efficient Kyber hardware accelerators, in addition to evaluating potential bitstream attacks on the actual Kyber hardware design.Firstly, a fully pipelined high-speed Kyber accelerator is proposed.

This accelerator utilizes a MDC-NTT module, with a compact NTT/ INTT design, and takes advantage of FIFOs to connect individual modules, to help match the throughput rates between different modules. The input-Keccak-output pipeline of the SHA3 module is explored. The pipeline between and within modules is explored to improve overall execution speed.

The pipelined accelerator reduces reliance on data storage. The results show that the proposed architecture improves speed by 25-44% and hardware efficiency by 19-33% under three different security levels. Secondly, a NTT architecture employing a FIFO interleaved memory scheme is proposed.

This architecture utilizes more customisable FIFO units instead of BRAM modules, greatly reducing hardware area while maintaining competitive speeds. Finally, bitstream fault injection attacks against FPGA implementations of ML-KEM are evaluated. Four initial attacks are proposed which include: disabling DSP, disabling BRAM, setting the ROM in the NTT to zero, and an attack against the CBD2 sampling.

All four attacks can be applied in both the key generation and key encapsulation phases, with the CBD2 attack requiring the least number of manipulated bitstream bits. Additionally, a scheme for attacking the $Nonce$ counter is proposed, which requires only 32 bits of the bitstream to be modified, and additional DSP disabling to filter redundant LUT units. All attacks can be performed in the key generation and key encapsulation phase of a Kyber/ML-KEM architecture.

Countermeasures to protect both the hard IP cores and LUT-based modules are presented, which include testing for zero values and splitting LUTs. </div>

Links

Where it is published

Catalogue records · 1

Topics

Provenance · 3 source records, 16 field assertions
SourceKeyLast seenRaw
ZivaHuboai:figshare.com:article/326404325 d agoJSON v1
Deakin Research Onlineoai:figshare.com:article/326404325 d agoJSON v1
DMU Figshareoai:figshare.com:article/326404325 d agoJSON v1
FieldAssertionExtractorEvidence
concepts[field].anzsrc:field:460405mapping · zivahub uct ac zavocabulary-mapper@1.0.0keywords['hardware security']
concepts[field].anzsrc:field:460405mapping · figshare dmu ac ukvocabulary-mapper@1.0.0keywords['hardware security']
concepts[field].anzsrc:field:460405mapping · dro deakin edu auvocabulary-mapper@1.0.0keywords['hardware security']
concepts[field].local:field:earth-environmentalmapping · dro deakin edu auconnector:dro_deakin_edu_au@1.0.0
concepts[field].local:field:earth-environmentalmapping · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0
concepts[field].local:field:earth-environmentalmapping · figshare dmu ac ukconnector:figshare_dmu_ac_uk@1.0.0
concepts[field].local:field:materials-sciencemapping · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0
concepts[field].local:field:materials-sciencemapping · dro deakin edu auconnector:dro_deakin_edu_au@1.0.0
concepts[field].local:field:materials-sciencemapping · figshare dmu ac ukconnector:figshare_dmu_ac_uk@1.0.0
concepts[field].local:field:physicsmapping · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0
concepts[field].local:field:physicsmapping · dro deakin edu auconnector:dro_deakin_edu_au@1.0.0
concepts[field].local:field:physicsmapping · figshare dmu ac ukconnector:figshare_dmu_ac_uk@1.0.0
descriptionsource · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0/metadata/dc/description
license_textsource · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0
publication_datesource · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0
titlesource · zivahub uct ac zaconnector:zivahub_uct_ac_za@1.0.0/metadata/dc/title